Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-19654

A unauthenticated remote peer may lead rsyslogd to crash due to a flaw in the optional imptcp module. A crafted input sequence during oversize-frame recovery can cause an invalid internal message length and terminate rsyslogd. No confidentiality or integrity impact, privilege escalation, or code execution has been identified. imtcp and the default imptcp framing modes are not affected.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 33.7%
CVSS Severity
CVSS v3 Score 7.5


Contact Us

Shodan ® - All rights reserved